Technology Data & Innovation
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Job Title Global Lead, Vulnerability Response Management, The Global Lead, Vulnerability Response Management is responsible for defining and leading the enterprise-wide strategy, governance, and execution of the organization’s vulnerability response and remediation program.
The role provides global oversight of vulnerability risk, remediation performance, regulatory compliance, and cyber exposure reduction across all regions, business divisions, and technology domains. You are accountable for ensuring vulnerabilities are prioritized using risk-based methodologies and remediated within agreed service levels, while driving continual improvement in cyber resilience.
The Global Lead serves as the senior authority for vulnerability response management and acts as the primary advisor to leadership, risk committees, regulators, and auditors on vulnerability-related cyber risk., * Define, enhance, and implement the global Vulnerability Response Management strategy and operating model
- Establish enterprise-wide standards, policies, governance frameworks, and operating procedures
- Develop and oversee a risk-based approach to vulnerability prioritization, remediation, and SLA adherence
- Lead continuous improvement of vulnerability management capabilities and ensure consistent execution across all regions
- Accountable for the global vulnerability response team, operating processes, key procedures, and performance objectives
- Oversee regulatory, audit, and compliance obligations, while monitoring regional performance and remediation effectiveness
How You’ll Lead
- Partner with Technology Leadership (Chief Information Officer and Technology Heads) to embed vulnerability response priorities into technology roadmaps, drive accountability for remediation outcomes, and ensure alignment with enterprise cyber risk objectives
- Collaborate with the Chief Information Security Officers and Security Leadership teams to define vulnerability management strategy, establish risk-based prioritization frameworks, and provide transparent reporting on cyber exposure, remediation performance, and emerging threats
- Engage with Technology Risk, Audit, Regulatory, and Control functions to ensure compliance with regulatory requirements, support audits and examinations, and strengthen governance through effective oversight, metrics, and continuous improvement initiatives
Requirements
- Significant leadership experience in Vulnerability Management, Cyber Defense, Security Operations, or Cyber Risk within large global organizations
- Proven experience leading enterprise-wide cyber security response and vulnerability remediation programs across geographically dispersed teams
- Demonstrated success by reducing cyber risk through risk-based vulnerability prioritization, remediation governance, and measurable risk reduction initiatives
- Experience engaging with executive leadership, regulators, auditors, and risk committees on cyber security and vulnerability management matters
- In-depth knowledge of relevant regulatory and industry frameworks, including NIST SP 800-40, DORA, FCA/PRA requirements, ISO 27001, and the NIST Cybersecurity Framework
- Proven ability to leverage AI tools to enhance productivity, optimize workflows to solve business problems, while applying critical judgment to ensure responsible and ethical use of data and AI outputs
Skills That Will Help You Excel
- Strong executive communication and stakeholder management skills, with the ability to influence senior leaders and drive complex decisions across global organizations
- Strategic thinker with the ability to balance cyber risk reduction, business priorities, and operational delivery
- Demonstrated ability to lead large-scale transformation and continuous improvement initiatives within cybersecurity or technology functions
- Industry certifications such as CISSP, CISM, CRISC, GIAC, or equivalent cybersecurity credentials
Benefits & conditions
- A diverse and inclusive environment that embraces change, innovation, and collaboration
- A hybrid working model, allowing for in-office / work from home flexibility, generous vacation, personal and volunteer days
- Employee Resource Groups support an inclusive workplace for everyone and promote community engagement
- Competitive compensation packages including health and wellbeing benefits, retirement savings plans, parental leave, and family building benefits
- Educational resources, matching gift and volunteer programs
About the company
We strive for a culture in which we are empowered to excel together every day. This includes acting responsibly, thinking commercially, taking initiative and working collaboratively. Together we share and celebrate the successes of our people. Together we are Deutsche Bank Group. We welcome applications from all people and promote a positive, fair and inclusive work environment.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
The Biggest German Tech Companies
Navigating the AI Shift
Top-Paying Tech Jobs (with Salaries)
What’s the Difference between a Junior, Mid, and Senior Developer?